From: gwtmp01@... Date: 2006-08-11T01:50:44+09:00 Subject: Re: [ANN] Rails 1.1.5: Mandatory security patch (and other tidbits) On Aug 10, 2006, at 12:04 PM, khaines@enigo.com wrote: > And AFAIK, despite there being information released from 3rd > parties, like that blog entry, about the vulnerability now, there > is still no official statement. Why is it that folks happily use open source software at no cost and then seem to expect that the accouterments of a legal/business/customer relationship must also exist with the authors of the software? Or is it the other way around? That the open source folks want all the *benefits* of a legal/business/customer relationship with their users but don't want to deal with any associated complaints/risks/liabilities? It is probably a little of both. Gary Wright